PuTTY
cpe:2.3:a:putty:putty:*:*:*:*:*:*:*, +1 more
- < 0.84
A vulnerability exists in PuTTY versions 0.77 prior to 0.84, where the application incorrectly maintains a trust indication for TELNET data after proxy authentication. This flaw could mislead users into believing a request from a malicious server was legitimate, potentially exposing sensitive information such as proxy passwords.
Exploitation of this vulnerability could lead to unintentional disclosure of proxy passwords to a TELNET server or a man-in-the-middle attacker.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.